Senior SOC Analyst

Reference: AR - SOCL3 - Bell_1788446663

Senior SOC Analyst

Location: London
Working Pattern: 4 days onsite, 1 day remote
Hours: Monday-Friday, standard business hours (no shift work)

Overview

We are seeking an experienced Senior SOC Analyst to support a major cyber security transformation programme within a global enterprise environment.

This role is ideal for a senior, hands-on Security Operations professional who combines strong incident investigation and threat analysis skills with experience in detection engineering, operational process development, and stakeholder engagement.

Working as a key bridge between regional and global Security Operations teams, you will play a critical role in the globalisation of security monitoring capabilities, helping to onboard, validate, optimise, and operationalise detection content while ensuring analysts have effective procedures and playbooks in place.

Key Responsibilities

Detection Rule Globalisation

  • Lead the onboarding of EMEA detection rules into the Global Security Operations Centre.
  • Review and validate detection logic, thresholds, alert conditions and expected behaviours across SIEM platforms such as Microsoft Sentinel, Splunk, QRadar, ArcSight, Exabeam, and LogRhythm.
  • Ensure accurate mapping of detection content to recognised threat frameworks, including MITRE ATT&CK.
  • Identify detection gaps, duplicate content and optimisation opportunities through detection engineering, threat hunting, and alert tuning activities.
  • Support standardisation of monitoring capabilities across global security teams covering EDR, XDR, cloud, identity, email, and network security telemetry.

SOP Development & Operationalisation

  • Develop and maintain Standard Operating Procedures (SOPs) for Tier 1 and Tier 2 SOC teams.
  • Create investigation workflows, triage processes and escalation procedures for security incidents across Microsoft Defender, CrowdStrike, Cortex XDR, SentinelOne, Carbon Black, Azure, AWS, and GCP environments.
  • Define required enrichment data, threat intelligence inputs and decision-making criteria.
  • Ensure procedures are practical, repeatable and aligned with global security operations.
  • Develop analyst playbooks and support SOAR and automation initiatives using technologies such as Microsoft Sentinel Automation, Cortex XSOAR, Splunk SOAR, Tines, and Swimlane.

Threat Analysis & Detection Validation

  • Validate the effectiveness of security detections through threat-focused analysis and threat hunting activities.
  • Perform quality assurance reviews of detection rules and analyst handling processes.
  • Review and simulate alert scenarios to confirm investigation workflows and expected outcomes.
  • Analyse attacker tactics, techniques and procedures (TTPs) and ensure detection content remains aligned with emerging threats.
  • Utilise KQL, SPL, SQL, log analysis, event correlation, and telemetry investigation to validate detection's and support investigations.
  • Support continuous improvement of detection and response capabilities.

Stakeholder Management & Collaboration

  • Work closely with Security Operations, Detection Engineering, Threat Intelligence, Incident Response, and Global SOC teams.
  • Act as a bridge between regional and global security functions.
  • Deliver knowledge transfer sessions and operational walkthroughs.
  • Translate complex technical concepts, detection logic, threat activity, and investigation outcomes into clear, business-friendly language.

Documentation & Governance

  • Maintain high-quality documentation of detection content and operational procedures.
  • Ensure traceability between detection logic, threat mappings and analyst workflows.
  • Support audit and compliance requirements through robust process documentation.

Essential Skills & Experience

  • Minimum 4 years' experience as a Tier 2 SOC Analyst (or recent Tier 3 experience).
  • Strong background in security incident investigation, threat analysis, and threat hunting.
  • Experience reviewing, tuning and validating detection rules and security alerts within SIEM platforms such as Microsoft Sentinel, Splunk, QRadar, ArcSight, Exabeam, or LogRhythm.
  • Experience working with Microsoft Defender XDR, Microsoft Defender for Endpoint, CrowdStrike Falcon, Cortex XDR, SentinelOne, Carbon Black, or similar EDR/XDR technologies.
  • Proven experience creating SOPs, playbooks, SOAR workflows, or response procedures for SOC teams.
  • Strong understanding of attacker tactics, techniques and procedures (TTPs).
  • Experience mapping detections to recognised threat frameworks such as MITRE ATT&CK.
  • Experience using KQL, SPL, SQL, or similar query languages for investigation, threat hunting, and alert validation.
  • Ability to define escalation criteria and investigation workflows.
  • Experience working across multiple security teams and stakeholder groups.
  • Strong communication skills with the ability to mentor and guide junior analysts.

Desirable Experience

  • Security transformation, SOC modernisation, or globalisation projects.
  • Detection engineering experience.
  • SOAR workflow, automation, or response procedure development.
  • Quality assurance of SOC processes and detection content.
  • Experience within financial services or highly regulated environments.
  • Experience delivering analyst training and knowledge transfer sessions.
  • Experience working within Azure, AWS, or GCP cloud environments.
  • Experience with threat intelligence integration, detection use case development, and security monitoring strategy.

Qualifications

  • Degree in Cyber Security, Information Security, Computer Science, or equivalent practical experience.
  • Relevant security operations, incident response, or monitoring certifications.
  • Industry certifications such as Security+, CySA+, GCIH, GCIA, CISSP, SC-200, SC-300, AZ-500, or equivalent are advantageous.

Ideal Candidate

The ideal candidate is a genuinely senior SOC professional, not simply a Detection Engineer or Tier 1 Analyst. You will have a broad Security Operations background covering incident investigation, threat analysis, detection engineering, playbook development, stakeholder management, and mentoring.

You will be comfortable operating between regional and global teams, driving consistency across security operations and helping shape how detection and response capabilities are delivered at scale.

This is an excellent opportunity for a senior SOC professional looking to influence a large-scale Security Operations transformation while remaining technically hands-on.

GCS is acting as an Employment Agency in relation to this vacancy.

£70,000.00 - £80,000.00
Per annum
GBP70000 - GBP80000 per annum
Added 03/09/2026
Reference: AR - SOCL3 - Bell_1788446663

Other similar jobs

SOC Manager

Added 12/05/2026

Key Accountabilities & ResponsibilitiesSOC Operations & Incident ResponseLead and manage 24×7 SOC operations, ensuring effective monitoring and rapid response to security events.Oversee the full incident response lifecycle: detection, containment, eradication, recovery, and post‑incident analysis.Serve as the primary escalation point for high‑severity (P1/P2) cybersecurity incidents.Ensure all incidents are handled in line with defined SLAs, playbooks, and escalation procedures. Threat Detection, Monitoring & ResponseMaintain optimal configuration, tuning, and performance of security technologies such as SIEM, SOAR, EDR/XDR, NDR, and UEBA.Lead the development and refinement of detection use cases, correlation logic, and alerting rules.Drive proactive threat‑hunting and continuous monitoring activities aligned with evolving...

Learn more

Senior Analyst, Ad Strategy

Added 13/08/2026

What You'll Work OnInternational Ads Strategy SupportSupport strategic analysis across international markets, reflecting differences in market maturity, regulation, and advertiser sophistication.Develop comparative views, market frameworks, and structured analyses to inform global vs local decisions.Support ongoing product prioritisation tied with the sales planning process.Executive CommunicationProduce clear, concise, executive‑ready decks and documents to support leadership discussions.Turn complex analysis into structured narratives with clear takeaways.Support ad‑hoc strategy deep dives as needed.Programmatic & Ad Ecosystem InsightApply a strong understanding of programmatic advertising and ad tech ecosystems to inform strategy work.Translate ecosystem knowledge into implications for ad product and monetisation strategy.What We're Looking For3-5+ years'...

Learn more

Senior Analyst - Identity & Access Management (IAM) (Contract)

Added 25/06/2026

Senior Analyst - Identity & Access Management (IAM) (Contract)Location: London (hybrid)Duration: 6 monthsEngagement: Inside IR35OverviewA Senior IAM Analyst is required to support and enhance identity and access management capabilities across a large-scale, enterprise environment. The role will focus on strengthening access controls, improving identity governance, and supporting ongoing transformation initiatives.Key Responsibilities* Support the design, implementation and optimisation of IAM controls and processes* Manage and improve user lifecycle management (joiners, movers, leavers)* Conduct access reviews, recertifications, and role-based access control (RBAC) activities* Ensure enforcement of least privilege and segregation of duties (SoD)* Work with application and infrastructure teams to onboard systems...

Learn more

Senior Analyst - Vulnerability Management (Contract)

Added 25/06/2026

Senior Analyst - Vulnerability Management (Contract)Location: London (hybrid)Duration: 6 monthsEngagement: Inside IR35OverviewA Senior Vulnerability Management Analyst is required to drive vulnerability identification, prioritisation, and remediation across enterprise IT and cloud environments. This role will improve the organisation's ability to manage exposure to cyber threats through robust vulnerability processes.Key Responsibilities* Operate and enhance the vulnerability management lifecycle (scan, assess, prioritise, remediate, report)* Perform and coordinate regular vulnerability scans across infrastructure, applications, and cloud environments* Analyse vulnerabilities and provide risk-based prioritisation aligned to business impact* Work with IT and engineering teams to track and drive remediation efforts* Provide detailed reporting on risk...

Learn more

Senior Ad Strategy Analyst

Added 16/06/2026

Job Title: Senior Ad Strategy AnalystJob Type: ContractLocation: London The OpportunityWe're hiring a Senior Ad Strategy Analyst, for a high-growth, global digital platform expanding its ad-supported business across international markets. This is a high-impact role sitting at the intersection of ad tech, data, audience strategy, and monetisation, supporting senior leadership in shaping the next phase of growth. If you're looking to move beyond execution into strategy, insights, and commercial decision-making, this could be a strong next step. What You'll Be DoingAds Strategy & Market InsightsSupport strategic analysis across international markets, considering differences in maturity, regulation, and advertiser demandBuild structured frameworks...

Learn more

Market & Liquidity Risk Business Analyst (VP)

Added 03/09/2026

Copilot said: Market & Liquidity Risk Business Analyst (VP)London | Hybrid Working | Long-Term ContractWe are currently supporting a leading global investment bank in the search for an experienced Market & Liquidity Risk Business Analyst (VP) to join a major risk transformation programme.This is an exciting opportunity for a senior Business Analyst with strong experience across Market Risk, Liquidity Risk and Regulatory Change within investment banking or capital markets environments.The RoleYou will work closely with Risk, Treasury, Finance, Front Office and Technology teams to deliver a range of strategic and regulatory initiatives.Key responsibilities include:Gathering, analysing and documenting business requirementsFacilitating workshops...

Learn more

Technical Business Analyst (SC Cleared)

Added 02/09/2026

ROLE PURPOSEBusiness Analysts are responsible for eliciting, analysing, and documenting business requirements for the PMP programme, ensuring solutions address operational needs and deliver measurable improvements. PRINCIPAL ACCOUNTABILITIESEngage with operational and enabling stakeholders to gather, analyse and clarify business requirements.Translate business needs into clear, structured artefacts including process maps, user stories and functional specifications.Ensure requirements are documented accurately, clearly and to agreed PMP standards.Support testing and acceptance activities by validating delivered solutions against approved business requirements.Assist with User Acceptance Testing (UAT), clarifying acceptance criteria and supporting issue resolution.Maintain traceability between requirements, delivered solutions and expected benefits.Support assurance and governance activity by...

Learn more

Market Data & Insights Analyst

Added 02/09/2026

We are seeking an experienced Market Data & Insights Analyst to deliver market intelligence, data analysis, and actionable insights that support strategic and evidence-based decision-making. This role will focus on analysing market trends, managing data collection processes, developing dashboards and reports, and working with internal and external stakeholders across communications and technology markets. Key ResponsibilitiesAnalyse market data to identify trends, opportunities, and industry developments. Collect, validate, and manage data from multiple internal and external sources. Develop reports, dashboards, and visualisations using Excel and Power BI. Provide data-driven insights to support strategic and regulatory decision-making. Collaborate with stakeholders to improve data...

Learn more

Reporting ANalyst

Added 02/09/2026

Reporting / Migration Analyst (Excel & Power BI)Location: Remote/Birmingham | Contract (Inside IR35)We are looking for an experienced Reporting / Migration Analyst to support a system migration programme and help deliver accurate reporting capabilities within a new platform environment.Key Responsibilities:Analyse existing reporting processes and replicate or enhance them within the new system.Gather business and reporting requirements from key stakeholders across the organisation.Translate business needs into clear reporting and data migration solutions.Develop and maintain reports, dashboards, and data visualisations using Power BI.Perform data analysis and validation using Excel and other reporting tools.Support migration activities, ensuring data accuracy, integrity, and reporting continuity.Work...

Learn more

Fiber Analyst

Added 25/08/2026

Job Summary:We are seeking a highly skilled and experienced Fiber Analyst to join our team and help technicians and engineers remotely.The successful candidate will be responsible to help technicians remotely for perform Fiber characterization, Bi-directional Testing, troubleshooting remotely on vendor Fiber networks, primarily within ISP & OSP environments.The role requires expertise in OTDR to validate Fiber paths remotely, identify issues, and provide remediation recommendations.As part of a small, dynamic remote team, you will have to prepare test packages remotely, manage project schedules, and collaborate with vendors, project managers, and internal teams to deliver high-quality results. Key Responsibilities:Help technicians and engineers...

Learn more

Fiber Analyst

Added 25/08/2026

Job Summary:We are seeking a highly skilled and experienced Fiber Analyst to join our team and help technicians and engineers remotely.The successful candidate will be responsible to help technicians remotely for perform Fiber characterization, Bi-directional Testing, troubleshooting remotely on vendor Fiber networks, primarily within ISP & OSP environments.The role requires expertise in OTDR to validate Fiber paths remotely, identify issues, and provide remediation recommendations.As part of a small, dynamic remote team, you will have to prepare test packages remotely, manage project schedules, and collaborate with vendors, project managers, and internal teams to deliver high-quality results. Key Responsibilities:Help technicians and engineers...

Learn more

Fiber Analyst

Added 25/08/2026

Job Summary:We are seeking a highly skilled and experienced Fiber Analyst to join our team and help technicians and engineers remotely.The successful candidate will be responsible to help technicians remotely for perform Fiber characterization, Bi-directional Testing, troubleshooting remotely on vendor Fiber networks, primarily within ISP & OSP environments.The role requires expertise in OTDR to validate Fiber paths remotely, identify issues, and provide remediation recommendations.As part of a small, dynamic remote team, you will have to prepare test packages remotely, manage project schedules, and collaborate with vendors, project managers, and internal teams to deliver high-quality results. Key Responsibilities:Help technicians and engineers...

Learn more

Fiber Analyst

Added 25/08/2026

Fiber AnalystLocation: Remote Contract: 12+ MonthsAbout the RoleWe are seeking an experienced Fiber Engineer to join a dynamic field team supporting fiber network testing, troubleshooting, and remediation activities across ISP and OSP environments. This role requires hands-on expertise in OTDR analysis, fiber characterization, bidirectional testing, and fusion splicing to ensure the performance, reliability, and integrity of fiber optic networks.The ideal candidate will have a strong telecommunications background and be comfortable working directly with vendors, project managers, and technical teams while traveling to customer sites as needed.Key ResponsibilitiesPerform OTDR testing to validate fiber paths and identify faults, bends, splice losses, and...

Learn more

Junior Business Analyst

Added 25/08/2026

We're looking for a Junior Business Analyst for a 6-month hybrid contract (2-3 days onsite), ideal for someone early in their career - recently out of university with 2-3 years of experience in business analysis and admin support tasks.Bonus if you have CRM experience (Salesforce, HubSpot, etc.) and familiarity with tools like Jira or Confluence.If you're looking to grow your BA skills in a supportive, fast-paced environment, I'd love to tell you more.GCS is acting as an Employment Business in relation to this vacancy.

Learn more

Fiber Analyst

Added 21/08/2026

Job Summary:We are seeking a highly skilled and experienced Fiber Analyst to join our team and help technicians and engineers remotely.The successful candidate will be responsible to help technicians remotely for perform Fiber characterization, Bi-directional Testing, troubleshooting remotely on vendor Fiber networks, primarily within ISP & OSP environments.The role requires expertise in OTDR to validate Fiber paths remotely, identify issues, and provide remediation recommendations.As part of a small, dynamic remote team, you will have to prepare test packages remotely, manage project schedules, and collaborate with vendors, project managers, and internal teams to deliver high-quality results. Key Responsibilities:Help technicians and engineers...

Learn more
At least 8 characters, 1 uppercase, 1 lowercase and 1 special character or number
Your file must be a doc, docx or pdf. No larger than 5MB.